> For the complete documentation index, see [llms.txt](https://docs.devarmor.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.devarmor.com/modules/threat-modeler/threat-modeler-overview.md).

# Threat Modeler Overview

An overview of DevArmor's Threat Modeler

Threat Modeler is DevArmor's core module for identifying security risks in an application. It combines information from your code repositories, architecture diagrams, and documents (PRDs, release docs, vulnerability reports, SAST/CSPM output) into a single model of your system, then analyzes that model for the threats, risks, and controls relevant to it.

A threat model captures:

* **Architecture** — the components, data stores, data flows, actors, and trust zones/boundaries that make up the system. See [Architecture & Diagrams](/modules/threat-modeler/architecture-and-diagrams.md).
* **Threats** — specific ways the system could be attacked, categorized using the industry-standard STRIDE framework and mapped to MITRE ATT\&CK techniques and tactics for deeper context.
* **Risks** — the business impact of a threat being realized, scored consistently using a defined formula.
* **Controls** — the mitigations that reduce a risk, which can be mapped to relevant compliance requirements and frameworks.

Watch a short walkthrough:

{% embed url="<https://files.gitbook.com/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FmdpEqBnpvjSMalcfXOU1%2Fuploads%2FJ434wGj6l5Sv966ufk8Y%2FDevArmor%20Demo%20(1).mp4?alt=media&token=0461dcde-4974-4332-bcf3-4b0f9908e02c>" %}
